CVE-2024-50246
CVSS 3.1 Score 7.8 of 10 (high)
Details
Published Nov 9, 2024
Updated: Nov 13, 2024
Summary
CVE-2024-50246 is a newly identified vulnerability affecting the Linux kernel. Specifically, in the `fs/ntfs3` module, there was a failure to adequately check the `alloc_size` of certain attributes, potentially leading to a buffer overflow issue. This could allow an attacker to execute arbitrary code with kernel privileges, posing a significant security risk. The issue has since been addressed in a recent Linux kernel update.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.